
Governance Risk & Compliance Manager
- Midvale, UT
- $197,100 per year
- Permanent
- Full-time
- Own the full risk management lifecycle: identification, assessment, treatment, monitoring and reporting
- Maintain the enterprise information security risk register and conduct periodic risk reviews using industry frameworks
- Lead scenario analyses and business impact assessments (BIA); recommend and track mitigation plans
- Implement financial loss expectancy models for quantitative risk assessment
- Manage external audits and assessments (e.g., SOC II) from scoping through remediation
- Monitor emerging regulatory changes (GDPR, CCPA/CPRA, etc.) and advise stakeholders on required controls
- Coordinate third-party attestation activities and maintain evidence demonstrating compliance
- Support the enterprise through unified audit lifecycle management
- Map regulatory and contractual requirements to internal controls; oversee control testing, maturity scoring and improvement initiatives
- Partner with Information Security to integrate technical controls—such as IAM, vulnerability scanning and incident response—into the GRC platform
- Ensure policies are reviewed, approved and communicated on a defined cadence
- Design and deliver ongoing risk and compliance training for employees, contractors and key vendors
- Promote a culture of compliance and ethical behavior through targeted campaigns and leadership engagement
- Lead, mentor and develop a team of analysts or specialists; set goals and measure performance
- Evaluate and manage GRC software tools and third-party risk management solutions
- Oversee budgets related to compliance initiatives and external consulting support
- 5+ years of experience in GRC, risk management, compliance, or information security
- 2+ years of experience leading or managing audit engagements (SOC II preferred)
- Experience building GRC programs in healthcare technology or SaaS environments
- 401(k) retirement plan with company match
- Traditional healthcare benefits such as medical and dental coverage, and some unique benefits like onsite health centers, corporate wellness programs, and free behavioral health appointments.
- Flexible work schedules - including work-from-home options available
- Recognition programs with rewards including trips, cash, and paid time off
- Family-friendly benefits including paid parental leave, fertility coverage, adoption assistance, and marriage counseling
- Tailored training resources including free LinkedIn learning courses
- Volunteer time off and employee-driven matching grants
- Tuition reimbursement programs